Bump Next deps to remove Vercel project vuln alert false positives#7216
Merged
Bump Next deps to remove Vercel project vuln alert false positives#7216
Conversation
Contributor
Author
|
The latest updates on your projects. Learn more about Vercel for GitHub.
1 Skipped Deployment
|
Contributor
Greptile SummaryThis PR updates Next.js dependencies across the monorepo to resolve false positive RSC vulnerability alerts from Vercel CI. The changes are semver patch-level updates:
All lock files are properly updated with resolved versions, and the changelog entry is correctly formatted. Confidence Score: 5/5
Important Files Changed
|
28beb53 to
566ae56
Compare
speaker-ender
approved these changes
Jan 14, 2026
mfbrown
pushed a commit
that referenced
this pull request
Jan 27, 2026
…7216) Co-authored-by: Dave Quinlan <83430497+daveqnet@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Unticketed chore
Description Of Changes
This PR upgrades Next.js dependencies to resolve a Vercel CI deployment and preview alert. The RSC vulns that Vercel is alerting for are not actually present in the Next versions pre-bump in this PR, but this alert is annoying, so I'm bumping deps to get rid of it.
Note: This PR was initially generated by Vercel's automated patching tool and has been modified manually for compatibility with the Fides codebase.
Code Changes
nextpackage to semver patch latestSteps to Confirm
Pre-Merge Checklist
CHANGELOG.mdupdated